Help RSS API Feed Maltego Contact                        

Domain > hzs16.cnzz.com

More information on this domain is in AlienVault OTX

Is this malicious?

Files that talk to hzs16.cnzz.com

MD5A/V
60b2b69fb3f9ef617090126c206385fd[TrojanDropper.VB.HV3] [Artemis!60B2B69FB3F9] [Trojan] [W32/VBDrop.AX] [TROJ_VBDROP.SMIA] [Trojan.VB-47110] [Trojan.Win32.VBKrypt.cjla] [Trojan.Win32.Pasta!IK] [TrojWare.Win32.TrojanDropper.VB.NQT] [Trojan.Click1.58730] [TR/StartPage.MC.193] [Troj/StartP-FQ] [Win32/VBKrypt.DQ] [Trojan/VBKrypt.biub] [TrojanDropper:Win32/VB.HV] [Trojan/Win32.VBKrypt] [Trojan.VBRA.012478] [Suspicious] [Trojan.Win32.Pasta] [W32/VB.MRY!tr]
8a08887eefb598f84baefea987bf4c2d[Artemis!8A08887EEFB5] [WS.Reputation.1] [DLOADER.Trojan] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Win32/Trojan.Downloader.1a2]
577ffdb2fa9b829756cde8f591ece04a[Artemis!577FFDB2FA9B] [APT1.A] [Trojan.Patched.Win32.37527]
0d517a047973121ef095904f836497a6[Artemis!0D517A047973] [Trojan.Shandian] [WS.Reputation.1] [Trojan.Win32.FACF.czuglw] [Trojan.Win32.A.Downloader.1148078] [Trojan.StartPage.64434] [TR/Comame.1148078] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Troj/StartP-HV] [Win32.Troj.Undef.(kcloud)] [Trojan:Win32/Comame!gmb] [Trj/CI.A] [Win32.Adware.Malplayer.Odpa] [Trojan.Hicrazyk] [Win32/Trojan.Downloader.1bb]
6a1d91fd53d6ed6ddf821995079ccfdd[Artemis!6A1D91FD53D6] [DLOADER.Trojan] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Win32/Trojan.2ff]
a0c9d0d8ab0339d45c86ed990c997aa2[Artemis!A0C9D0D8AB03] [Trojan.Shandian] [WS.Reputation.1] [DLOADER.Trojan] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Troj/StartP-HV] [Win32/Trojan.Downloader.894]
d3cf0fd678f670ec0ec6cf7f513829f2[Artemis!D3CF0FD678F6] [DLOADER.Trojan] [Heuristic.BehavesLike.Win32.Suspicious-PKR.S] [Win32.Troj.Undef.(kcloud)]
b1fe051e51f4cbe7c5472399d22d5123

Whois

PropertyValue
Email dnsadmin@hk.alibaba-inc.com
NameServer NS4.ALIYUN.COM
Created 2000-04-13 00:00:00
Changed 2013-01-08 00:00:00
Expires 2018-04-13 00:00:00
Registrar MARKMONITOR INC.

DNS Resolutions

DateIP Address
2014-07-1442.156.140.25 (ClassC)
2014-12-0542.156.140.84 (ClassC)
2019-12-09203.119.128.195 (ClassC)
2024-04-2936.156.202.70 (ClassC)
2025-04-10223.109.148.174 (ClassC)
2025-06-21223.109.148.175 (ClassC)
2025-06-2936.156.202.74 (ClassC)
2025-07-04223.109.148.140 (ClassC)
2025-08-08223.109.148.173 (ClassC)

Port 80

Port 443

Subdomains

DateDomainIP
s100.cnzz.com2014-05-1742.120.219.6
s110.cnzz.com2023-12-11122.225.212.183
s10.cnzz.com2023-12-12122.225.212.183
hqs10.cnzz.com2024-12-11223.109.148.173
zs10.cnzz.com2025-04-1336.156.202.70
hzs10.cnzz.com2014-06-1742.156.140.25
v10.cnzz.com2024-06-21220.185.168.234
z10.cnzz.com2017-03-28106.11.145.5
s120.cnzz.com2019-12-12101.89.124.234
s20.cnzz.com2014-05-1042.120.219.6
gzs20.cnzz.com2014-05-1042.156.140.20
hzs20.cnzz.com2025-06-09223.109.148.140
s130.cnzz.com2024-03-04150.138.252.188
s30.cnzz.com2023-12-04122.225.212.183
s140.cnzz.com2020-03-16101.89.124.234
s40.cnzz.com2023-07-1858.216.15.119
s50.cnzz.com2023-07-1658.216.15.250
s60.cnzz.com2013-11-1842.156.140.11
s70.cnzz.com2023-07-2258.216.15.250
s80.cnzz.com2023-07-1958.216.15.119
s90.cnzz.com2023-12-03122.225.212.183
s101.cnzz.com2023-12-03122.225.212.183
s111.cnzz.com2023-12-03122.225.212.183
q11.cnzz.com2025-04-1136.156.202.74
s11.cnzz.com2014-06-2742.120.219.6
View on OTX | View on ThreatMiner








Data with thanks to AlienVault OTX, VirusTotal, Malwr and others. [Sitemap]



� Copyright 2019 AlienVault, Inc. | Legal| Status| Do Not Sell My Personal Information